Apps Systems Engineer 4 App Sec Engineer

Job Description


Important Note During the application process, ensure your contact information
(email and phone number) is up to date and upload your current resume when
submitting your application for consideration. To participate in some selection
activities you will need to respond to an invitation. The invitation can be
sent by both email and text message. In order to receive text message
invitations, your profile must include a mobile phone number designated as
'Personal Cell' or 'Cellular' in the contact information of your application.

At Wells Fargo, we want to satisfy our customers' financial needs and help them
succeed financially. We're looking for talented people who will put our
customers at the center of everything we do. Join our diverse and inclusive
team where you'll feel valued and inspired to contribute your unique skills and

Help us build a better Wells Fargo. It all begins with outstanding talent. It
all begins with you.

Wells Fargo Technology sets IT strategy; enhances the design, development, and
operations of our systems; optimizes the Wells Fargo infrastructure footprint;
provides information security; and enables continuous banking access through
in-store, online, ATM, and other channels to Wells Fargo's more than 70 million
global customers.

Consumer & Small Business Banking Technology offers technology and services
that exceed Wells Fargo customers' expectations and directly enable them to
succeed financially. We interact with customers more than 12 billion times a
year through in-store, online, ATM, branches, Debit Cards and telephone
transactions. We impact customers directly, through systems availability and
security, as well as indirectly, through our business partners who offer and
deliver a myriad of products and services that meet customers' financial needs.
We provide a competitive advantage for the company through excellence in
fundamentals, integrated partnerships, and our talented and engaged team

The CSBB ASC group is looking for an Apps Systems Engineer (senior technical
analyst with security knowledge) to help with daily operations of the
Application Security Champion (ASC) operating model, which supports the
Enterprise Application Security Program (EASP) providing secure coding
governance and support services. EASP operations (processes and procedures) is
also known as the Secure Software Development Life Cycle (S-SDLC) methodology.

Individual contributor role supporting complex computer applications and/or
application initiatives. Individual should have a solid understanding of
available technology, tools, and existing designs and will work on complex
problems where analysis of situations or data requires evaluation of intangible
variance factors. Selected candidate will also plan, perform, and act as the
escalation point for the complex platform designs, coding, and testing and lead
complex multiple modeling, simulations, and analysis efforts. Conduct security
risk assessments to ensure compliance with corporate information security
policies and adherence to best practices. Identify security vulnerabilities for
the company's networks, application systems, hardware infrastructure and
emerging technologies to improve the enterprise information security posture.
Communicate to the line of business on the inherent risks, providing meaningful
hardening and mitigation strategies. Provide security solutions that require
resolution of complex operational and integration issues associated with
networks, data systems, and applications to successfully deploy secure
technologies and to enhance existing technologies. Remediate OWASP common
AppSec Vulnerabilities (eg XSS, Parameter tampering, Injection, etc.) is
needed. Utilize Static Analysis tools such as Fortify or Checkmarx. Communicate
vulnerability details to both technical and non-technical audiences. Solid
knowledge and understanding of information security practices and policies,
including Information Security Frameworks, Standards, and best practices is

* 5+ years of application development and implementation experience

* Excellent verbal, written, and interpersonal communication skills
* 1+ year of Fortify Code Analyzer experience
* 1+ year of SAST (Static Analysis Software Testing) experience
* 1+ year of CheckMarx experience
* Advanced understanding of IT industry frameworks including ITIL, IT4IT,
* Knowledge and understanding of Information Technology process management
* Ability to organize and manage multiple priorities

* 2 + years of experience communicating system vulnerabilities and
remediation guidance to both technical and non-technical personnel
* 2+ years application security vulnerability detection and mitigation
experience with Open Web Application Security Project (OWASP) Top 10 and
SANS Common Weakness Enumeration Top 25

Job Expectations
* Ability to travel up to 10% of the time

Street Address

MN-Minneapolis255 2nd Ave S - Minneapolis, MN
CA-SF-South Of Market Area45 Fremont Street - San Francisco, CA
AZ-Chandler2600 S Price Rd - Chandler, AZ
AZ-Chandler2700 S Price Rd - Chandler, AZ
AZ-PHX-Northwest Phoenix2222 W Rose Garden Ln - Phoenix, AZ
IA-West Des Moines800 S Jordan Creek Pkwy - West Des Moines, IA
MN-Minneapolis550 South 4th St - Minneapolis, MN
NC-Charlotte1525 W Wt Harris Blvd - Charlotte, NC
NC-Charlotte300 S Brevard St - Charlotte, NC


All offers for employment with Wells Fargo are contingent upon the candidate
having successfully completed a criminal background check. Wells Fargo will
consider qualified candidates with criminal histories in a manner consistent
with the requirements of applicable local, state and Federal law, including
Section 19 of the Federal Deposit Insurance Act.

Relevant military experience is considered for veterans and transitioning
service men and women.

Wells Fargo is an Affirmative Action and Equal Opportunity Employer, Minority/
Female/Disabled/Veteran/Gender Identity/Sexual Orientation.

Reference Number
Show moreShow less

FindTheBestJob is a free service and does not charge a fee at any stage of application or recruitment process. Don’t provide your bank account or credit card details to anyone during job application. FindTheBestJob does not guarantee the availability of a job since organizations may end applications earlier than due date.

Apply Now